Vulnerability Details CVE-2021-23558
The package bmoor before 0.10.1 are vulnerable to Prototype Pollution due to missing sanitization in set function. **Note:** This vulnerability derives from an incomplete fix in [CVE-2020-7736](https://security.snyk.io/vuln/SNYK-JS-BMOOR-598664)
Exploit prediction scoring system (EPSS) score
EPSS Score 0.006
EPSS Ranking 69.6%
CVSS Severity
CVSS v3 Score 7.3
CVSS v2 Score 7.5
Products affected by CVE-2021-23558
-
cpe:2.3:a:bmoor_project:bmoor:0.10.0
-
cpe:2.3:a:bmoor_project:bmoor:0.9.0
-
cpe:2.3:a:bmoor_project:bmoor:0.9.1
-
cpe:2.3:a:bmoor_project:bmoor:0.9.2
-
cpe:2.3:a:bmoor_project:bmoor:0.9.3
-
cpe:2.3:a:bmoor_project:bmoor:0.9.4
-
cpe:2.3:a:bmoor_project:bmoor:0.9.5
-
cpe:2.3:a:bmoor_project:bmoor:0.9.6
-
cpe:2.3:a:bmoor_project:bmoor:0.9.7
-
cpe:2.3:a:bmoor_project:bmoor:0.9.8